XSS hunter 收集Webview 页面上存在的反射,储存型XSS ,方便应急APP 和前端页面在发布时遇到XSS 安全问题..
☆42Oct 9, 2016Updated 9 years ago
Alternatives and similar repositories for XSS-hunter
Users that are interested in XSS-hunter are comparing it to the libraries listed below
Sorting:
- WEB 跨域postMessage() 漏洞挖掘工具,基本原理:使用AJAX 获取页面代码,结合iframe 和data 协议构造测试环境,然后在iframe 下的window.onmessage 中插入hook 监控onmessage 的参数,最后通过能否被原来的onme…☆11Sep 13, 2016Updated 9 years ago
- 中国网络安全技术对抗赛代码☆16May 15, 2017Updated 8 years ago
- VulHint是辅助代码审计的 sublime text 3 插件☆67Nov 8, 2018Updated 7 years ago
- ☆34Nov 4, 2018Updated 7 years ago
- 浏览器XSS 过滤器Fuzzing 框架 (browser xss aduit fuzzing framework )..☆15Sep 13, 2016Updated 9 years ago
- SerialWriter is an incomplete implementation of Java serialization for study of Java deserialization vulnerabilities.☆104Feb 28, 2018Updated 8 years ago
- Kerberos accounts enumeration taking advantage of AS-REQ☆43Apr 25, 2018Updated 7 years ago
- DOOM是在thorn上实现的分布式任务分发的ip端口漏洞扫描器☆136Dec 1, 2015Updated 10 years ago
- This is a backdoor about discover network device ,and it can hidden reverse connecting the hacker's server with encrypt commuication 后渗透后…☆198Aug 29, 2015Updated 10 years ago
- 一个对常见的web日志进行解析处理的粗糙DEMO☆21Jun 3, 2018Updated 7 years ago
- PHP 白盒分析工具,结合AST 和数据流跟踪分析代码,达到自动化白盒审计功能☆148May 14, 2018Updated 7 years ago
- ☆145Jun 20, 2018Updated 7 years ago
- Feigong,针对各种情况自由变化的mysql注入脚本,In view of the different things freely change the mysql injection script☆107Jan 24, 2017Updated 9 years ago
- 安全狗sql注入绕过☆29Mar 21, 2018Updated 7 years ago
- ERPScan Public POC for CVE-2018-2636☆22Feb 1, 2018Updated 8 years ago
- ☆72Jun 28, 2018Updated 7 years ago
- 针对PHP网马的正则查杀☆13Jan 10, 2018Updated 8 years ago
- Some ICS Vulnerabilities I've found will be listed here.☆13Nov 18, 2016Updated 9 years ago
- Ssdt Hook Detection tool☆13Nov 11, 2016Updated 9 years ago
- nmap模块扫描端口服务后,调用对应的exp检测☆12Jun 9, 2018Updated 7 years ago
- 自动化收集linux信息☆203Apr 26, 2018Updated 7 years ago
- 烛龙 -- 基于Docker的环境快速搭建系统☆12Dec 2, 2016Updated 9 years ago
- 常用系统服务默认端口列表☆13Apr 25, 2017Updated 8 years ago
- 对windows-api内容进行自动审查和过滤监控☆15May 30, 2017Updated 8 years ago
- 甲方安全工程师必备,内部钓鱼系统☆230Jan 15, 2022Updated 4 years ago
- ☆13Feb 17, 2016Updated 10 years ago
- SecurityPaper For www.polaris-lab.com☆104Mar 13, 2019Updated 6 years ago
- 微盾®VirtualWall®防火墙整套源代码☆193Jun 17, 2021Updated 4 years ago
- ☆106Feb 2, 2018Updated 8 years ago
- F-Scrack is a single file bruteforcer supports multi-protocol☆310Sep 5, 2017Updated 8 years ago
- ☆23Jun 2, 2017Updated 8 years ago
- ☆41Nov 9, 2018Updated 7 years ago
- 做过的实验,踩过的坑☆40Jun 7, 2018Updated 7 years ago
- 浏览器用户全部信息收集js☆167Oct 27, 2015Updated 10 years ago
- ☆16Aug 2, 2018Updated 7 years ago
- ssrf、ssrfIntranetFuzz、dnsRebinding、recordEncode、dnsPoisoning、Support ipv4/ipv6☆217Aug 17, 2017Updated 8 years ago
- ☆85Oct 8, 2019Updated 6 years ago
- Web scan foundation framework☆163Dec 19, 2017Updated 8 years ago
- 基于docker虚拟化的恶意代码沙箱☆71Aug 13, 2018Updated 7 years ago